← signalIQ

Privacy Policy

Last updated 13 August 2026. Written in plain words on purpose — if any of it is unclear, that is our failure and we would like to know.

1. Who we are

signalIQ is operated by Appzoola Pty Ltd, a company registered in Australia. We are the data controller for the information described here.

Questions, corrections or deletion requests: info@signaliq.agency.

2. Scanning a website

Running a scan requires no account and no email address. We record the domain scanned, the score, the individual check results and the time — so we can show you a trend, and so we know the tool is working.

We also record the IP address the scan came from, purely to detect abuse of a free tool. IP addresses are deleted automatically after 30 days by a scheduled job; the scan record itself remains without it.

We scan only what is publicly visible on the website you name, exactly as any visitor or search engine would see it. We do not log in to anything, bypass any access control, or scan any page you have not made public.

3. Creating an account

If you save a report we ask for an email address. We use it to send you a sign-in link, your weekly report if you leave that switched on, and occasional messages about the service.

We do not store passwords, because we do not use them. Signing in works by emailing you a single-use link. We store the address itself and a one-way hash of each link, never the link.

4. Connecting Google or Meta

You can connect Google Analytics, Google Search Console, Google Ads or Meta Ads. Doing so is entirely optional and the product works without it.

Access is read-only. signalIQ can read reporting data from those accounts. It cannot create, change, pause or delete anything — no campaign, no budget, no property setting. That is a property of the permissions we request, not a promise about our intentions.

Authorisation happens on Google's or Meta's own consent screen. We never see or ask for your password. The resulting access tokens are stored encrypted, and you can disconnect at any time from the Integrations page, which revokes our access immediately.

Data retrieved this way is used onlyto show you your own reporting inside your own account. It is never pooled with other customers' data, never used to benchmark one customer against another, and never sold or shared for advertising.

5. Cookies and analytics

Cookies that are strictly necessary — keeping you signed in, remembering your light or dark theme, and recording your cookie choice — are set without asking, because the site cannot work without them.

Analytics cookies are set only if you accept them in the banner. Declining is honoured on the server, not just hidden in the interface: if you decline, the analytics script is never loaded at all.

6. Who else sees your data

We do not sell your data, and we do not share it for advertising. It reaches:

  • Our own servers, which we operate — your data is not held by a third-party analytics or CRM platform.
  • Google and Meta, but only to request your own data back from them, on your authorisation.
  • AI providers (OpenAI, Groq), when measuring whether assistants can describe your business. We send the public question — for example “best gym in Seminyak” — and your business name and domain. We do not send your analytics, your ad data, or anything from your account.
  • Google PageSpeed Insights, which receives the public URL being measured.
  • Anyone we are legally required to disclose to, if that ever happens.

7. Where it is stored

On servers we control in Germany, operated by our hosting provider. If you are outside that country, your information is transferred and stored there. Access is limited to the people who run signalIQ, and every application connection uses a restricted database account rather than an administrative one.

8. How long we keep it

  • Scan IP addresses: 30 days, then deleted automatically.
  • Scan results, reports and connected data: until you delete your account.
  • Sign-in links: they expire, and are single-use.
  • Anonymous scans with no account attached: kept as a record that the scan happened, with no personal information after the 30-day IP purge.

9. Deleting your data

Go to Settings → Delete this account. It removes the account, every sign-in on it, your projects, scan history, saved reports and connected integrations.

It is a real deletion, not a hidden flag. The records are removed, it is immediate, and we cannot restore them afterwards. You can also email us and we will do it for you.

10. Your rights

You can ask us what we hold about you, correct it, have it deleted, or object to how we use it. Email info@signaliq.agency and we will respond within 30 days. If you are in Australia and are not satisfied, you can complain to the Office of the Australian Information Commissioner; if you are in the UK or EU, to your local data protection authority.

11. Changes

If we change how we use your information in a way that materially affects you, we will email the address on your account rather than quietly updating this page.